Project

General

Profile

Bug #7077

Pulp default admin password set to 'admin', should be random generated

Added by Walden Raines almost 7 years ago. Updated almost 3 years ago.

Status:
Closed
Priority:
High
Assignee:
Category:
Installer
Target version:
Difficulty:
Triaged:
Yes
Bugzilla link:
Fixed in Releases:
Found in Releases:

Description

Cloned from https://bugzilla.redhat.com/show_bug.cgi?id=1127242
Description of problem:
Having admin:admin as default pulp credentials should be considered a security issue and we shouldn't ship Sat 6 GA with this issue inside

Version-Release number of selected component (if applicable):
6.0.3

How reproducible:
Always

Steps to Reproduce:
1. install sat6
2. grep default_password /etc/pulp/server.conf

Actual results:
The default password set to admin

curl -k -u admin:admin https://localhost/pulp/api/v2/repositories/
lets me to go to the list of repositories

Expected results:
The default password set to random script

curl -k -u admin:admin https://localhost/pulp/api/v2/repositories/
returns 401 Unauthorized

Additional info:

Associated revisions

Revision 0cd91f72 (diff)
Added by Walden Raines almost 7 years ago

Refs #7077/BZ1127242: generate random password for pulp user.

Generate a random password instead of using the password "admin"
for the default pulp user.

http://projects.theforeman.org/issues/7077
https://bugzilla.redhat.com/show_bug.cgi?id=1127242

Revision 881859bc
Added by Walden Raines almost 7 years ago

Merge pull request #24 from waldenraines/7077

Refs #7077/BZ1127242: generate random password for pulp user.

Revision d65ac13c (diff)
Added by Walden Raines almost 7 years ago

Fixes #7077, #7006: update puppet-pulp module.

Revision 4f847017
Added by Walden Raines almost 7 years ago

Merge pull request #103 from waldenraines/7077

Fixes #7077, #7006: update puppet-pulp module.

History

#1 Updated by The Foreman Bot almost 7 years ago

  • Status changed from New to Ready For Testing
  • Target version set to 54
  • Pull request https://github.com/Katello/katello-installer/pull/101 added
  • Pull request deleted ()

#2 Updated by Walden Raines almost 7 years ago

  • Pull request https://github.com/Katello/puppet-pulp/pull/24 added
  • Pull request deleted (https://github.com/Katello/katello-installer/pull/101)

#3 Updated by Eric Helms almost 7 years ago

  • Triaged changed from No to Yes

#4 Updated by Walden Raines almost 7 years ago

  • Pull request https://github.com/Katello/katello-installer/pull/103 added
  • Pull request deleted (https://github.com/Katello/puppet-pulp/pull/24)

#5 Updated by Walden Raines almost 7 years ago

  • Status changed from Ready For Testing to Closed
  • % Done changed from 0 to 100

#6 Updated by Eric Helms almost 7 years ago

  • Legacy Backlogs Release (now unused) set to 13

Also available in: Atom PDF